Christian D Wallace

Christian D Wallace

Senior Platform & Site Reliability Engineer — Chicago, IL

10 years bridging production networking and cloud infrastructure at scale. Currently architecting Instructure's multi-region EKS platform that powers Canvas LMS for tens of millions of learners worldwide. I combine deep networking foundations with modern platform engineering — and I own migrations end-to-end.

By the numbers

40
EKS clusters across 8 production AWS regions
433
Active service deployments on ArgoCD GitOps
34
Transit Gateways migrated across 9 regions with zero customer impact
60%
Bandwidth reduction via VPN split-tunneling at Trevipay

What I’ve shipped

Internal Developer Platform at Instructure

Built and scaled "Trigger" — the platform powering Canvas LMS deployments. Helm/Kustomize manifests, Kyverno policy-as-code, Akuity-managed ArgoCD GitOps. Led migration of production workloads off legacy Cloudgate/Condor PaaS onto a Node.js/Express + MongoDB deployment API.

Company-wide Zero-Trust Access Modernization

Phased AppGate ZTNA rollout replacing Teleport and standalone SSH keys for the entire engineering org. Wired ArgoCD prod Okta SSO via SCIM and rotated IAM Identity Center SCIM tokens across multi-account AWS Organizations.

AWS Transit Gateway Mesh Migration

Migrated two parallel TGW meshes off VyOS-on-EC2, then led a fleet-wide security-group referencing rollout across 34 TGWs in 9 regions — eliminating thousands of CIDR-based rules. Authored reusable Terraform modules and orchestrated Terraform Cloud workspace applies at scale.

FinOps & Cloud Security Tooling

CrowdStrike CSPM across 9 AWS accounts, AWS Config continuous-mode StackSets org-wide, CloudZero cost-attribution labels across the EKS fleet, and WAF tuning during an active post-compromise investigation.

Technical stack

Cloud / AWS
EKS · Transit Gateway · IAM Identity Center · LZA · VPC/IPAM · CloudFront · WAFv2
Platform
Kubernetes · ArgoCD · Helm · Kustomize · Kyverno · Akuity
IaC & CI/CD
Terraform · Terraform Cloud · Ansible · GitHub Actions · Jenkins
Security
Zero-Trust · AppGate ZTNA · Okta SSO/SCIM · Vault · CrowdStrike CSPM · Wiz
Networking
BGP · IPsec · SD-WAN · Cisco ACI · AWS TGW
Observability
Observe (OPAL) · Datadog · Splunk · OpenTelemetry · CloudZero
Languages
Go · Python · Ruby · Bash · Node.js · SQL

Links